@Zen, Thanks for posting in Q&A.
The device registered to Azure AD and enroll into Intune is consider as personal device. Intune can manage it. Based on my research, it supports to deploy win32 app. Microsoft 365 app and etc
https://learn.microsoft.com/en-us/mem/intune/apps/apps-win32-app-management#prerequisites
https://learn.microsoft.com/en-us/mem/intune/apps/apps-add-office365
For log analytics, it manages all MDM enrolled device. So I think it also support.
For the policy with windows Hello for Business, it only supports Azure AD join device:
But there are still many we can manage via Intune for these personal devices, I think you can try to use this method to manage some personal device in Intune.
Hope it can help.
If the answer is helpful, please click "Accept Answer" and kindly upvote it. If you have extra questions about this answer, please click "Comment".
Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.